Deep Tide TechFlow news: On June 15, SlowMist released a technical analysis stating that the deprecated Aztec Connect RollupProcessor contract was attacked due to a settlement boundary bypass vulnerability, resulting in approximately $2.19 million in assets being stolen. The attacker exploited the mismatch between numRealTxs and decoded_slots to forge deposits and cause inconsistencies between L1 and L2 states, thereby bypassing L1 settlement verification and completing the fund transfer. The report also disclosed details such as the root cause of the vulnerability, on-chain fund flow, and the attack execution path.

AZTEC5.75%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned